Log on to the EMS web interface with administrator credentials.
In the navigation pane, click TLS Management > Client Profiles.
On the Client Profiles page, click Add.
In the Profile Name field, type the name of the profile.
For example, client_sm247.
In the Certificate field, select a certificate corresponding to the internal interface IP address that acts as a Connect IP for SIP Trunk.
For this reference configuration, the certificate used has the Session Border Controller FQDN as the CN and included the FQDN and the A1 interface IP address in the Subject Alternate Name (SAN).
In the Peer Certificate Authority field, select the CA that is used to sign the identity certificates for the internal Avaya Oceana®/Avaya Analytics™ servers/clusters.